Unrated severityNVD Advisory· Published Jul 25, 2007· Updated Apr 23, 2026
CVE-2007-3962
CVE-2007-3962
Description
Multiple stack-based buffer overflows in fsplib.c in fsplib before 0.9 might allow remote attackers to execute arbitrary code via (1) a long filename that is not properly handled by the fsp_readdir_native function when MAXNAMLEN is greater than 255, or (2) a long d_name directory (dirent) field in the fsp_readdir function.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
12- fsp.cvs.sourceforge.net/fsp/fsplib/ChangeLognvdPatch
- fsp.cvs.sourceforge.net/fsp/fsplib/fsplib.cnvdPatch
- fsp.cvs.sourceforge.net/fsp/fsplib/fsplib.cnvdPatch
- secunia.com/advisories/26184nvdPatchVendor Advisory
- www.securityfocus.com/bid/25034nvdPatch
- bugs.gentoo.org/show_bug.cginvd
- osvdb.org/38569nvd
- osvdb.org/38570nvd
- secunia.com/advisories/26378nvd
- secunia.com/advisories/27501nvd
- security.gentoo.org/glsa/glsa-200711-01.xmlnvd
- www.mandriva.com/security/advisoriesnvd
News mentions
0No linked articles in our index yet.